About the Role

We are seeking a Remote Chief Information Security Officer to lead our security initiatives at ButterflyMX. As our CISO, you will be responsible for protecting our customers, employees, and partners across cloud, IoT, and enterprise systems. This role is pivotal in shaping our security strategy while ensuring that our security measures support our growth without hindering innovation.

What You'll Do

  • Own and evolve the company’s security and privacy strategy.
  • Scale and mentor the Security team, developing great security team members as the company grows.
  • Build and mature the company’s security framework, balancing pragmatism and rigor across system security, application security, infrastructure security, and device security.
  • Lead security operations and incident response, ensuring the company can rapidly detect, respond to, and recover from threats.
  • Oversee compliance programs (e.g., SOC 2, GDPR, CPRA) and maintain a continuous improvement mindset beyond checkbox compliance.
  • Partner with Engineering and Product to embed security into the SDLC, CI/CD pipelines, and IoT device lifecycle.
  • Establish and maintain relationships with key stakeholders, such as executive leadership, providing actionable metrics and insights into security posture, risk trends, and emerging threats.
  • Oversee vendor risk management and ensure robust controls across third-party services and integrations.
  • Conduct regular security awareness training and education programs for employees.
  • Evaluate and select security technologies and tools to enhance the organization's security posture.
  • Build a strong security culture, from awareness and education to clear policies and positive engagement across all teams.
  • Optimize the security budget and make pragmatic tradeoffs that balance protection, velocity, and business impact.

Requirements

  • 10+ years of progressive experience in information security, including 3+ in a leadership role at a SaaS or technology company.
  • Experience securing cloud-native systems (AWS/GCP) and managing organizational security at a remote-first company.
  • Deep understanding of security frameworks and standards (e.g., NIST CSF, CIS, ISO 27001, SOC 2, OWASP).
  • Strong background in incident response, threat modeling, and risk management.
  • Proven ability to partner with product and engineering teams to design secure, scalable architectures.
  • Experience building and mentoring high-performing security teams.
  • Excellent communication skills enabling you to distill complex security topics for executives, engineers, and customers alike.
  • A balanced, business-first mindset: you make practical, risk-informed decisions rather than striving for theoretical perfection.
  • Certifications such as CISSP, CISM, or CRISC (preferred but not required).

Nice to Have

  • Experience with security in IoT environments.
  • Knowledge of privacy regulations and compliance requirements.
  • Familiarity with security tools and technologies.

What We Offer

  • Comprehensive Medical (ButterflyMX covers 90% of the cost), Dental, and Vision plans (ButterflyMX covers 100% of the cost) starting day 1.
  • 401(k) plan with a match.
  • 13 paid holidays and 25 days PTO.
  • Paid Family Leave.
  • Employee Assistance Program.
  • Quarterly self-care stipends.
  • Collaborative, dynamic work environment filled with kind, smart people, who are working hard on an industry-defining product.
  • ButterflyMX is an equal opportunity employer and we value diversity at our company.
Why This Job9.0 of 10

This role offers a unique opportunity to lead security initiatives in a rapidly growing SaaS company, with a strong focus on innovation and team development.

Salary Range
Required
0/1
Optional
0/1
Bonus
0/1

Who Will Succeed Here

Expertise in cloud security technologies such as AWS Security Hub and Azure Security Center, with a proven track record of implementing security frameworks like NIST and ISO 27001 in a SaaS environment.

Strong leadership skills with experience managing remote security teams, fostering a culture of continuous improvement, and effectively driving incident response strategies across distributed systems.

A proactive mindset with extensive experience in risk management and incident response, capable of balancing security needs with business objectives to facilitate innovation without compromising security.

Learning Resources

NIST Cybersecurity Framework - A Quick Start Guideguide

Career Path

Remote Chief Information Security Officer - SaaS Focus(Now)Vice President of Information Security(1-2 years)Chief Technology Officer(3-5 years)

Market Overview

Market Size 2024
$40B
Annual Growth
12.5%
AI Adoption in Security
35%
Investment in Cybersecurity
+150%
Labour Demand for Security Roles
+22%
Avg Salary for CISO
$200K

Skills & Requirements

Required
Information SecurityCloud SecurityIncident Response
Growing in Demand
Zero Trust ArchitectureDevSecOpsThreat Intelligence
Declining
Perimeter SecurityStatic Analysis Tools

Domain Trends

Rise of Zero Trust Security Models
Organizations are increasingly adopting Zero Trust models, with 70% of enterprises implementing some form of Zero Trust by 2025.
Increased Investment in Cloud Security
Cloud security spending is projected to reach $17 billion by 2025, growing at a CAGR of 20% as companies shift to cloud-based infrastructures.
Integration of AI in Cybersecurity
AI-driven security solutions are expected to account for 40% of all cybersecurity spending by 2025, enhancing threat detection and response capabilities.

Industry News

Loading latest industry news...

Finding relevant articles from the last 6 months

All job postings are automatically gathered by algorithms. We do not review or verify listings, be careful when applying and do not sign-in with iCloud or Google services.